Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'chrome' = '%TEMP%\chrome.exe'
- chrome.exe
- %TEMP%\chrome.exe
- %TEMP%\gta5 setup.exe
- %TEMP%\fy
- %TEMP%\is64.txt
- %TEMP%\is64.bat
- %TEMP%\is64.fil
- %TEMP%\file.exe
- %TEMP%\fy
- 'yo###ite.com':80
- DNS ASK yo###ite.com
- '%TEMP%\gta5 setup.exe'
- '%TEMP%\chrome.exe'
- '%WINDIR%\syswow64\cmd.exe' /c if not exist "%TEMP%\efolder" mkdir "%TEMP%\efolder"
- '%WINDIR%\syswow64\cmd.exe' /c if not exist "%TEMP%\xtmp" mkdir "%TEMP%\xtmp"
- '%WINDIR%\syswow64\cmd.exe' /c attrib +h %TEMP%\xtmp
- '%WINDIR%\syswow64\attrib.exe' +h %TEMP%\xtmp
- '%WINDIR%\syswow64\cmd.exe' /c echo:0>%TEMP%\is64.txt
- '%WINDIR%\syswow64\cmd.exe' /c %TEMP%\is64.bat
- '%WINDIR%\syswow64\cmd.exe' /c
- '%WINDIR%\syswow64\cmd.exe' /c pause